At X Mondo Hair LLC (“XMONDO”, “we”, “us” or “our” in this Policy), we are committed to respecting your privacy and protecting the Personal Data (as defined below) that we obtain and hold about you and others.
1. Introduction and General Terms
The Site is operated by X Mondo Hair LLC, a company registered in the State of New York, United States of America. The Site allows customers to view and purchase products, among other things (“Services”).
Where we decide the purpose or means for the processing of the Personal Data that you provide when using our Site, we are the “data controller” for the purposes of the European General Data Protection Regulation 2016 (“GDPR”).
Our Site may contain hyperlinks to third party websites. These websites operate fully independently from us, and we cannot accept any responsibility or liability for the privacy practices of such third parties nor the availability of these external sites or resources. The appearance of such links on our Site is not an endorsement. Should you use any of these websites, such use is at your own risk and we would recommend that you review their respective privacy policies and our Terms.
2. What Information Will We Collect About You?
Information voluntarily provided: You may give us information about you by filling in forms when using our Services, setting up an account, signing up to our newsletter, or contacting us with e-mail and other similar inquiries. Such information can include:
Identity and contact data: We collect your name, address, email address, and telephone number.
Content You Provide Us: We collect your contributions, text, writings, reviews, responses, comments, suggestions, shopping cart information, order information, Submissions (as defined below), and other material that you voluntarily provide to us or with your consent.
Personal Data We Collect Through Our Social Media Pages: We have pages on social media sites, including but not limited to, Facebook, Instagram, Twitter, Snapchat, Pinterest, YouTube, TikTok, and Twitch (“Social Media Pages”). When you interact with our Social Media Pages, we will collect personal data that you elect to provide to us, such as your contact details. In addition, the companies that host our Social Media Pages may provide us with aggregate information and analytics regarding the use of our Social Media Pages.
Data from Our Service Providers: Our third-party service providers collect certain data to either fulfill the orders and services you request from us or to provide us information about how our Site and Services are used:
The foregoing shall be referred to herein as “Personal Data”.
3. How We Use Your Personal Data
Providing the Services to you as a prospective or existing customer
We may legally use and retain your Personal Data where we need to perform the contract we are about to enter into or have entered into with you, such as:
In order for you to purchase products via our Site, we currently use the following third-party payment providers (“Payment Provider”) Shopify Payments, PayPal, and Afterpay (all PCI Service Provider Level 1 certified platforms) to collect, store and process payment information from you, including your name, email address, credit card number and bank account details. Our servers will not collect or have access to your payment details.
Any purchases you make via the Site will also be governed by the Payment Provider’s terms and conditions and/or privacy policies.
We may contact you via email to remind you about products you left in your shopping basket, that you may want to purchase. We will do this pursuant to our legitimate interests in promoting our business. If you do not wish to be contacted via email please let us know by clicking unsubscribe at the bottom of any email that you receive.
Contacting Us (Your Enquiries)
If you contact us via our Site, to make an enquiry or otherwise, in certain situations we will ask you to provide a limited amount of Personal Data about yourself, such as your name, email address, and your message or enquiry in the free text box. We will use this information to respond to your enquiries, for example:
In line with the legitimate interest we have in promoting our business, we will process your enquiries to reply to your query, including providing you with information about the Services we offer and keeping track of your purchase history.
We may also process enquiries to take steps you ask of us with a view to entering into an agreement to provide you with our Services.
You are under no obligation to provide us with any details, but if you choose to not provide us with relevant information, we may not be able to respond and/or provide the assistance that you request.
If you ask to be added to our mailing list by subscribing to our newsletter, we will keep you updated with information on news, offers, updates on new hair products and events via email through a third party service provider, Mailchimp.
In line with the legitimate interest we have in promoting our business, we will use the email address you give us via our Site to provide you with this information. If you would like to be removed from that list, please let us know by clicking unsubscribe at the bottom of any marketing email that you receive. After you unsubscribe, you will be removed from our mailing list within a reasonable time.
To find out more about this service provider, please visit: https://mailchimp.com/legal/privacy/
There may also be circumstances where we will ask you for your prior consent in respect of our use of your Personal Data or where we may rely on an alternative lawful basis to process your Personal Data in which case you will be notified at the time.
By way of example but not limitation, we use Google Analytics, Shopify, Swym, Sitewit, and may use other third party service providers from time to time in our sole discretion, for analytics and/or sales data. When you visit our Site, these service providers may collect the following data, which will be anonymized and aggregated before reporting back to us:
This analysis is fundamental to the running of our online business and we therefore undertake such monitoring in the pursuit of our legitimate interests in improving our Site, and to provide a better service and source of information to visitors.
We do not control third parties’ tracking technologies or how they may be used. To find out more about the following service providers and to learn how to opt out, please visit:
Where applicable, we provide you with the option to opt out of the use of cookie feature(s), which will prevent your browser from accepting new cookies, as well as (depending on the sophistication of your browser software) allowing you to decide on acceptance of each new cookie in a variety of ways. In connection with viewing the Site to enable you to take advantage of the most attractive features of the Services, we recommend that you leave cookies active as we believe they will likely improve your experience.
To learn more about your opt-out options, please visit:
All content you submit to us
If you send us objectionable content or otherwise behave in a disruptive manner when using our Site, we may process Personal Data included in your messages to respond to and stop such behavior.
Where we process Personal Data in this way, we will hold that Personal Data on our systems for as long as is reasonably necessary to achieve these objectives, unless a longer retention period is required or permitted by law (such as tax, accounting, or other legal requirements).
4. Do We Share Your Personal Data with Anyone Else?
We keep your Personal Data confidential, but may share or disclose it (i) with your consent, (ii) to our personnel, business partners, suppliers or subcontractors insofar as it is reasonably necessary for the purposes set out in this Policy, (iii) to provide you with access to the Site and Services, (iv) to comply with laws, (v) to protect your rights, or (vi) to fulfill business obligations. If we provide your Personal Data to third parties, we shall only do so provided that they do not make independent use of the information and provide the same confidential treatment as we do.
We only permit them to process your Personal Data for specified purposes and in accordance with our instructions. All our third-party service providers are required to take appropriate security measures to protect your Personal Data. Activities which are carried out by or in collaboration with third party service providers including our website hosting company, payment processor(s), product review processor, and Ship Hero (our current fulfilment service provider).
In addition, we may disclose your Personal Data to the extent that we are required to do so by law (which may include to government bodies and law enforcement agencies); in connection with any legal proceedings or prospective legal proceedings; and to establish, exercise or defend our legal rights (including providing information to others for the purposes of fraud prevention).
If we are involved in a merger, acquisition, or sale of all or a portion of our business or assets, the Personal Data we hold may be included as part of that sale, in which case you will be notified via email, your account and/or a prominent notice on the Site of any changes in ownership or use of your information, as well as any choices you may have regarding that information.
We may use third-party advertising companies, such as Google, Snapchat, Criteo, or Facebook, to help you see and find our products. You may see XMONDO banners or ads when you are on other websites or applications. These companies may use information about your visits to the Site and other websites that are contained in cookies and other tracking technologies that we place on your device in order to provide advertisements about goods and services of interest to you.
Except as provided above, we will not provide your information to third parties.
5. Your rights in relation to your Personal Data which we process.
EU & Swiss Residents
If you are a resident of a country in the European Economic Area (“EEA”) or Switzerland (“European Resident”), you have additional rights regarding your Personal Data. You can withdraw your consent to our collection or processing of your Personal Data or your personal information at any time. Withdrawing your consent will not affect the lawfulness of any processing we conducted prior to such withdrawal, nor will it affect processing of your Personal Data or your personal information conducted in reliance on lawful processing grounds other than consent. The Site generally provides you with a reasonable means to view and change your profile information and you can opt-out of marketing communications at any time by clicking on the “unsubscribe” or “opt-out” link in the marketing emails we send you. If you have any questions or comments about the processing of your personal information, you may contact us at: email@example.com.
You have the following rights over the way we process Personal Data relating to you. We aim to comply without undue delay, and within one month at the latest, in response to any requests submitted by you to us:
To make a request in relation to any of the aforementioned rights, please send your requests to firstname.lastname@example.org.
California & Nevada Residents
XMONDO does not sell your Personal Information and will not do so in the future without providing you with notice and an opportunity to opt-out of such sale as required by law. We may disclose your Personal Information for the following purposes, which are not a sale: (i) if you direct us to share your Personal Information, (ii) to comply with your requests under the CCPA, (iii) disclosures as part of a merger or asset sale, and (iv) as otherwise required or permitted by applicable law. Similarly, we do not offer financial incentives associated with our collection, use, or disclosure of your Personal Information.
We collect various categories of Personal Information when you use the Site, including identifiers, commercial information, internet or other electronic network or device activity information, geolocation data, and professional information. A more detailed description of the information we collect and how we use it is provided above.
Under the CCPA, you have the following rights:
Please note that to protect your information and the integrity of our Site and Services, we will need to verify your identity before processing your request. An agent may submit a request on your behalf, but you must verify that your agent is authorized to do so.
California Civil Code Section 1798.83, also known as the “Shine The Light” law, permits our users who are California residents to request and obtain from us, once a year and free of charge, information about categories of personal information (if any) we disclosed to third parties for direct marketing purposes and the names and addresses of all third parties with which we shared personal information in the immediately preceding calendar year. If you are a California resident and would like to make such a request, please submit your request in writing to us using the contact information provided below.
If you are under 18 years of age, reside in California, and have a registered account with the Site, you have the right to request removal of unwanted data that you publicly post on the Site. To request removal of such data, please contact us using the contact information provided below, and include the email address associated with your account and a statement that you reside in California. We will make sure the data is not publicly displayed on the Site, but please be aware that the data may not be completely or comprehensively removed from our systems.
Additionally, Nevada law (SB §220) requires website operators to provide a way for Nevada consumers to opt out of the sale of certain information that the website operator may collect about them. XMONDO does not sell your personal information to third parties as defined in Nevada law, and will not do so in the future without providing you with notice and an opportunity to opt-out of such sale as required by law.
All requests for information or changes to your preferences must be directed to: email@example.com. Such requests must include the reference “Request for California Privacy Information” or “Request for Nevada Privacy Information” in the subject line and in the body of the message, and must include the email address or mailing address, as applicable, for us to send our response. This request may be made no more than once per calendar year. We reserve the right not to respond to requests submitted to us if not submitted pursuant to the terms set forth above.
We do not use the Site to knowingly solicit information from or market to children under the age of 13. If a parent or guardian becomes aware that his or her child has provided us with information without their consent, he or she should contact us at firstname.lastname@example.org or write to us at X Mondo Hair LLC, c/o Sharma Law PLLC, 475 St Marks Ave #7J, Brooklyn, NY 11238 or email@example.com. We will delete such information within a reasonable time.
We will take commercially reasonable, appropriate technical and organizational measures to ensure a level of security appropriate to the risk that could be encountered via the use of our Site and Services taking into account the likelihood and severity those risks might pose to the rights and freedoms of our Site visitors and customers.
In particular, we will take precautions to protect against the accidental or unlawful destruction, loss or alteration, and unauthorized disclosure of or access to the Personal Data transmitted, stored or otherwise processed by us.
Please be aware that, while we make the security of our Site and your Personal Data a high priority and devote considerable time and resources to maintain robust IT security, no security system can prevent all security breaches. When you choose to share your Personal Data with us, you accept the aforesaid and provide your information at your own risk.
8. International Data Transfers
There are agreements in place to ensure that Personal Data is processed using appropriate safeguards that meet the requirements of data protection laws. Such appropriate safeguards may include standard data protection clauses adopted by a data protection regulator and approved by the European Commission, such as the European Commission’s standard contractual clauses. We use the European Commission’s standard contractual clauses where appropriate when exporting data to a processor outside of the EU.
If you would like to find out more about these safeguards or if you have any other queries or comments in relation to this Policy, please let us know by emailing us at firstname.lastname@example.org.
To find out more about the standard contractual clauses, please visit: https://ec.europa.eu/info/law/law-topic/data-protection/data-transfers-outside-eu/model-contracts-transfer-personal-data-third-countries_en
9. Retention Periods or Criteria
We will hold your Personal Data for as long as is necessary for the relevant purpose for which that Personal Data was obtained unless a longer retention period is required or permitted by law (such as tax, accounting, or other legal requirements).
To determine the appropriate retention period for Personal Data, we consider the amount, nature, and sensitivity of the Personal Data, the potential risk of harm from unauthorized use or disclosure of your Personal Data, the purposes for which we process your Personal Data and whether we can achieve those purposes through other means, and the applicable legal requirements. Notwithstanding the foregoing, we retain Personal Data while your Account is active and not closed, and if you do not delete your Account, your Personal Data may remain within your Account even if you have not recently purchased a Product, for the purposes of providing you access to the Site, and as otherwise stated herein. You can delete your Account at any time by following the instructions in the Account settings.
If you would like us to stop using or holding your Personal Data and/or would like to request its deletion, please email us at email@example.com.
This Policy may be updated from time to time. We will notify you of any changes by posting the new Policy here https://xmondohair.com/pages/privacy-policy, and, where feasible, by letting you know by email or your account, or through a notification requiring click-through consent.
11. Contact Us
Questions, comments and requests in relation to this Policy are welcome and should be addressed to X Mondo Hair LLC, 333 Washington St., #202, Jersey City, NJ 07302 and via email to firstname.lastname@example.org, or to X Mondo Hair LLC, c/o Sharma Law PLLC, 475 St Marks Ave #7J, Brooklyn, NY 11238 and via email to email@example.com You may also call us toll-free at: (929) 279-2350.
Last Updated: December 15, 2021